From 357e960e40f47e2c14b796981b3e610c78f6e0e5 Mon Sep 17 00:00:00 2001 From: Martin Willi Date: Wed, 24 Nov 2010 17:22:16 +0100 Subject: Implemented hook to toggle initiator flag in IKE header --- src/conftest/Makefile.am | 2 +- src/conftest/hooks/set_ike_initiator.c | 87 ++++++++++++++++++++++++++++++++++ 2 files changed, 88 insertions(+), 1 deletion(-) create mode 100644 src/conftest/hooks/set_ike_initiator.c (limited to 'src') diff --git a/src/conftest/Makefile.am b/src/conftest/Makefile.am index 7ef6177b7..9799b1f79 100644 --- a/src/conftest/Makefile.am +++ b/src/conftest/Makefile.am @@ -9,7 +9,7 @@ conftest_SOURCES = conftest.c conftest.h config.c config.h actions.c actions.h \ hooks/set_ike_version.c hooks/pretend_auth.c hooks/set_length.c \ hooks/log_proposals.c hooks/set_proposal_number.c hooks/log_ke.c \ hooks/log_id.c hooks/custom_proposal.c hooks/set_ike_spi.c \ - hooks/set_ike_request.c hooks/set_reserved.c + hooks/set_ike_request.c hooks/set_reserved.c hooks/set_ike_initiator.c INCLUDES = \ -I$(top_srcdir)/src/libstrongswan \ diff --git a/src/conftest/hooks/set_ike_initiator.c b/src/conftest/hooks/set_ike_initiator.c new file mode 100644 index 000000000..6ba43eaca --- /dev/null +++ b/src/conftest/hooks/set_ike_initiator.c @@ -0,0 +1,87 @@ +/* + * Copyright (C) 2010 Martin Willi + * Copyright (C) 2010 revosec AG + * + * This program is free software; you can redistribute it and/or modify it + * under the terms of the GNU General Public License as published by the + * Free Software Foundation; either version 2 of the License, or (at your + * option) any later version. See . + * + * This program is distributed in the hope that it will be useful, but + * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY + * or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License + * for more details. + */ + +#include "hook.h" + +#include + +typedef struct private_set_ike_initiator_t private_set_ike_initiator_t; + +/** + * Private data of an set_ike_initiator_t object. + */ +struct private_set_ike_initiator_t { + + /** + * Implements the hook_t interface. + */ + hook_t hook; + + /** + * Alter requests or responses? + */ + bool req; + + /** + * ID of message to alter. + */ + int id; +}; + +METHOD(listener_t, message, bool, + private_set_ike_initiator_t *this, ike_sa_t *ike_sa, message_t *message, + bool incoming) +{ + if (!incoming && + message->get_request(message) == this->req && + message->get_message_id(message) == this->id) + { + ike_sa_id_t *id; + + DBG1(DBG_CFG, "toggling IKE message initiator flag"); + id = message->get_ike_sa_id(message); + id->switch_initiator(id); + } + return TRUE; +} + +METHOD(hook_t, destroy, void, + private_set_ike_initiator_t *this) +{ + free(this); +} + +/** + * Create the IKE_AUTH fill hook + */ +hook_t *set_ike_initiator_hook_create(char *name) +{ + private_set_ike_initiator_t *this; + + INIT(this, + .hook = { + .listener = { + .message = _message, + }, + .destroy = _destroy, + }, + .req = conftest->test->get_bool(conftest->test, + "hooks.%s.request", TRUE, name), + .id = conftest->test->get_int(conftest->test, + "hooks.%s.id", 0, name), + ); + + return &this->hook; +} -- cgit v1.2.3